Bazooka Adware and Spyware Scanner Log 12

****************************************
Bazooka Adware and Spyware Scanner v1.13b1
http://www.kephyr.com/spywarescanner/
http://www.kephyr.com/spywarescanner/library/
Log created 12:51:04.
OS: Windows NT 5.0
Database version: 1.580000
Database format version: 1.020000
Database date: 20040113
Current date: 2004-01-15 12:51


****************************************
Result when scanning:

A Better Internet 777.777.000 bi.dll
http://www.kephyr.com/spywarescanner/library/abetterinternet/index.phtml

A Better Internet 777.777.001 {000006B1-19B5-414A-849F-2A3C64AE6939}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000006B1-19B5-414A-849F-2A3C64AE6939}
http://www.kephyr.com/spywarescanner/library/abetterinternet/index.phtml

A Better Internet.C 779.000.000 %WinDir%\mypbutn.exe
C:\WINNT\mypbutn.exe
http://www.kephyr.com/spywarescanner/library/abetterinternet.c/index.phtml

A Better Internet.D 780.000.000 %WinDir%\cgetaway.exe
C:\WINNT\cgetaway.exe
http://www.kephyr.com/spywarescanner/library/abetterinternet.d/index.phtml

ActualNames 544.744.001 %ProgramsDir%\AdvSearch\
C:\Program\AdvSearch\
http://www.kephyr.com/spywarescanner/library/actualnames/index.phtml

Bargain Buddy 102.997.949 %ProgramsDir%\Bargain Buddy\
C:\Program\Bargain Buddy\
http://www.kephyr.com/spywarescanner/library/bargainbuddy/index.phtml

BlowSearch 123.300.001 %ProgramsDir%\BlowsearchToolbar\
C:\Program\BlowsearchToolbar\
http://www.kephyr.com/spywarescanner/library/blowsearch/index.phtml

BroadcastPC 177.977.917 RVP
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\RVP
http://www.kephyr.com/spywarescanner/library/broadcastpc/index.phtml

BroadcastPC 888.997.948 %ProgramsDir%\RVP\
C:\Program\RVP\
http://www.kephyr.com/spywarescanner/library/broadcastpc/index.phtml

ClipGenie 102.444.948 %ProgramsDir%\ClipGenie\
C:\Program\ClipGenie\
http://www.kephyr.com/spywarescanner/library/clipgenie/index.phtml

ClockSync 847.700.001 %ProgramsDir%\ClockSync\
C:\Program\ClockSync\
http://www.kephyr.com/spywarescanner/library/clocksync/index.phtml

Cydoor 399.000.000 %SystemDir%\AdCache\
C:\WINNT\system32\\AdCache\
http://www.kephyr.com/spywarescanner/library/cydoor/index.phtml

Cydoor 399.000.001 Cd_clint.dll
http://www.kephyr.com/spywarescanner/library/cydoor/index.phtml

eXact Search Bar 617.299.124 %ProgramsDir%\eXact\
C:\Program\eXact\
http://www.kephyr.com/spywarescanner/library/exactsearchbar/index.phtml

eXact Search Bar.B 618.299.127 {224530A0-C9CB-4AEE-9C0F-54AC1B533211}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}
http://www.kephyr.com/spywarescanner/library/exactsearchbar.b/index.phtml

eXact Search Bar.B 618.299.127 {224530A0-C9CB-4AEE-9C0F-54AC1B533211}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}
http://www.kephyr.com/spywarescanner/library/exactsearchbar.b/index.phtml

FlashTrack 128.293.000
HKEY_LOCAL_MACHINE\SOFTWARE\Flt\
http://www.kephyr.com/spywarescanner/library/flashtrack/index.phtml

FlashTrack 128.293.001 {665ACD90-4541-4836-9FE4-062386BB8F05}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{665ACD90-4541-4836-9FE4-062386BB8F05}
http://www.kephyr.com/spywarescanner/library/flashtrack/index.phtml

FlashTrack 128.293.002 %ProgramsDir%\Flt\
C:\Program\Flt\
http://www.kephyr.com/spywarescanner/library/flashtrack/index.phtml

Free History Cleaner 312.800.001 %SystemDir%\fhcprogress.exe
C:\WINNT\system32\\fhcprogress.exe
http://www.kephyr.com/spywarescanner/library/freehistorycleaner/index.phtml

Httper 931.000.002 %ProgramsDir%\Httper\
C:\Program\Httper\
http://www.kephyr.com/spywarescanner/library/httper/index.phtml

IGetNet 692.118.337 install_all.dll
http://www.kephyr.com/spywarescanner/library/igetnet/index.phtml

Instant Access Dialer 847.000.001 %ProgramsDir%\Instant Access\
C:\Program\Instant Access\
http://www.kephyr.com/spywarescanner/library/instantaccessdialer/index.phtml

Instant Access Dialer.B 848.000.000 EGDial.dll
http://www.kephyr.com/spywarescanner/library/instantaccessdialer.b/index.phtml

Instant Access Dialer.C 849.000.001 EGDHTML_1024.dll
http://www.kephyr.com/spywarescanner/library/instantaccessdialer.c/index.phtml

KeySpec 895.300.001 %ProgramsDir%\Keyboard Spectator Pro\
C:\Program\Keyboard Spectator Pro\
http://www.kephyr.com/spywarescanner/library/keyspec/index.phtml

LimeShop 120.120.002 %ProgramsDir%\LimeShop\
C:\Program\LimeShop\
http://www.kephyr.com/spywarescanner/library/limeshop/index.phtml

My Search Bar 132.098.655
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\My Way Speedbar Uninstall\DisplayName
http://www.kephyr.com/spywarescanner/library/mysearchbar/index.phtml

My Search Bar 777.777.778 %ProgramsDir%\MyWay\
C:\Program\MyWay\
http://www.kephyr.com/spywarescanner/library/mysearchbar/index.phtml

My Search Bar.B 778.777.000 {0494D0D9-F8E0-41ad-92A3-14154ECE70AC}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{0494D0D9-F8E0-41ad-92A3-14154ECE70AC}
http://www.kephyr.com/spywarescanner/library/mysearchbar.b/index.phtml

My Search Bar.C 779.777.001 {0494D0D1-F8E0-41ad-92A3-14154ECE70AC}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0494D0D1-F8E0-41ad-92A3-14154ECE70AC}
http://www.kephyr.com/spywarescanner/library/mysearchbar.c/index.phtml

PowerSearch 342.300.000 {4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}
http://www.kephyr.com/spywarescanner/library/powersearch/index.phtml

PowerSearch 342.300.000 {4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}
http://www.kephyr.com/spywarescanner/library/powersearch/index.phtml

PowerSearch 342.300.001 %ProgramsDir%\PowerSearch\
C:\Program\PowerSearch\
http://www.kephyr.com/spywarescanner/library/powersearch/index.phtml

Real Spy Monitor 740.900.001 %WinDir%\RSM\
C:\WINNT\RSM\
http://www.kephyr.com/spywarescanner/library/realspymonitor/index.phtml

SaveNow 090.090.091 %ProgramsDir%\Save\
C:\Program\Save\
http://www.kephyr.com/spywarescanner/library/savenow/index.phtml

Scbar 190.092.391 %ProgramsDir%\scbar\
C:\Program\scbar\
http://www.kephyr.com/spywarescanner/library/scbar/index.phtml

SpyBan 243.700.000 %ProgramsDir%\SpyBan\
C:\Program\SpyBan\
http://www.kephyr.com/spywarescanner/library/spyban/index.phtml

SpyBan 243.700.001 SpyBan
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\SpyBan
http://www.kephyr.com/spywarescanner/library/spyban/index.phtml

SpyAgent 199.700.000 %ProgramsDir%\Spytech Software\Spytech SpyAgent\
C:\Program\Spytech Software\Spytech SpyAgent\
http://www.kephyr.com/spywarescanner/library/spyagent/index.phtml

SpyAgent 199.700.001 SystemSA32.dll
http://www.kephyr.com/spywarescanner/library/spyagent/index.phtml

SystemSoap Pro 957.500.001 %ProgramsDir%\System Soap Pro\
C:\Program\System Soap Pro\
http://www.kephyr.com/spywarescanner/library/systemsoappro/index.phtml

Tiny Key Logger 342.800.000 %SystemDir%\tikl.exe
C:\WINNT\system32\\tikl.exe
http://www.kephyr.com/spywarescanner/library/tinykeylogger/index.phtml

Tiny Key Logger 342.800.002
HKEY_CURRENT_USER\SOFTWARE\TiKL\ExeName
http://www.kephyr.com/spywarescanner/library/tinykeylogger/index.phtml

Transponder 616.000.002 {000006B1-19B5-414A-849F-2A3C64AE6939}
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000006B1-19B5-414A-849F-2A3C64AE6939}
http://www.kephyr.com/spywarescanner/library/transponder/index.phtml

WhenUSearch 534.000.001 %ProgramsDir%\WhenUSearch\
C:\Program\WhenUSearch\
http://www.kephyr.com/spywarescanner/library/whenusearch/index.phtml

Winpup 340.800.000 %WinDir%\telnat.exe
C:\WINNT\telnat.exe
http://www.kephyr.com/spywarescanner/library/winpup/index.phtml

Winpup 340.800.001
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\comms\ren
http://www.kephyr.com/spywarescanner/library/winpup/index.phtml

****************************************
Auto start entries:
C:\Program\Zone Labs\ZoneAlarm\zonealarm.exe
C:\Program\Delade filer\Adobe\Calibration\Adobe Gamma Loader.exe
C:\Program\Zone Labs\ZoneAlarm\zonealarm.exe
C:\Program\Delade filer\Adobe\Calibration\Adobe Gamma Loader.exe
C:\Program\GROKSTER\WiseUpdt.exe /c
C:\Program\FlashTalk\FlashTalk.exe -s
C:\Program\GROKSTER\WiseUpdt.exe /c
C:\Program\FlashTalk\FlashTalk.exe -s

Go here to analyse the startup entries and the associated files:
http://www.kephyr.com/filedb/index.php

****************************************
Run entries:
Synchronization Manager mobsync.exe /logon
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\Synchronization Manager

windowsremote C:\Program\Windows Remote Server\bin\winremoteserv.exe -reportwithmessagebox
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\windowsremote

Systems.exe C:\Program\Keyboard Spectator Pro\Systems.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\Systems.exe

System32dodwÿÿÿÿ  C:\Program\Spytech Software\Spytech SpyAgent\sysdiag.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\System32dodwÿÿÿÿ 

System32dodwÿÿÿÿ  C:\Program\Spytech Software\Spytech SpyAgent\sysdiag.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\System32dodwÿÿÿÿ 

C:\Program\Spytech Software\Spytech SpyAgent\sysdiag.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\

AST C:\WINNT\AST
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\AST

GroksterSupport wjview /cp:p "C:\Program\GroksterSupport\System\Code" Main lp: "C:\Program\GroksterSupport"
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\GroksterSupport

RVP C:\Program\RVP\bpc.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\RVP

AdRoarUpdate C:\WINNT\ARUpdate.exe
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\AdRoarUpdate

CydoorUpdate RunDll32 C:\WINNT\system32\AdCache\Temp\cd_clint.dll,ServiceRunDll v
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce\CydoorUpdate

internat.exe internat.exe
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\internat.exe

SpyBan "C:\Program\SpyBan\SpyBan.exe" /s
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\SpyBan


Go here to analyse the run entries and the associated files:
http://www.kephyr.com/filedb/index.php

****************************************
Browser helper objects:

{000006B1-19B5-414A-849F-2A3C64AE6939} not set C:\WINNT\bi.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000006B1-19B5-414A-849F-2A3C64AE6939}

{0494D0D1-F8E0-41ad-92A3-14154ECE70AC} myBar BHO C:\Program\MyWay\myBar\1.bin\MYBAR.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0494D0D1-F8E0-41ad-92A3-14154ECE70AC}

{4C12361F-3431-4A69-B0CA-CA788A8F7C12} MereSurfer Band C:\Program\MereSurfer 2003 Free\MereSurfInstall.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4C12361F-3431-4A69-B0CA-CA788A8F7C12}

{54EC170F-6EB1-47C6-9C4D-EB0BE20CE45E} not set C:\WINNT\DOWNLO~1\APHelper.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{54EC170F-6EB1-47C6-9C4D-EB0BE20CE45E}

{665ACD90-4541-4836-9FE4-062386BB8F05} not set C:\Program\Flt\Flt.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{665ACD90-4541-4836-9FE4-062386BB8F05}

{BDF3E430-B101-42AD-A544-FADC6B084872} NAV Helper C:\Program\Norton AntiVirus\NavShExt.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDF3E430-B101-42AD-A544-FADC6B084872}

{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8} not set C:\WINNT\AdRoar.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8}


****************************************
Toolbars:

{8E718888-423F-11D2-876E-00A0C9082467} C:\WINNT\system32\msdxm.ocx
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{8E718888-423F-11D2-876E-00A0C9082467}

{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} C:\Program\Norton AntiVirus\NavShExt.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}

{224530A0-C9CB-4AEE-9C0F-54AC1B533211} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}\InprocServer32 System error message: Det går inte att hitta filen.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}

{340166BC-786B-401F-96AC-7C8821EFA9CD} C:\Program\MereSurfer 2003 Free\MereSurferF.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{340166BC-786B-401F-96AC-7C8821EFA9CD}

{62999427-33FC-4baf-9C9C-BCE6BD127F08} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{62999427-33FC-4baf-9C9C-BCE6BD127F08}\InprocServer32 System error message: Det går inte att hitta filen.

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{62999427-33FC-4baf-9C9C-BCE6BD127F08}

{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D} C:\Program\PowerSearch\Toolbar\pwrs0102.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}

{0494D0D9-F8E0-41ad-92A3-14154ECE70AC} C:\Program\MyWay\myBar\1.bin\MYBAR.DLL
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{0494D0D9-F8E0-41ad-92A3-14154ECE70AC}

{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8} C:\WINNT\AdRoar.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8}

{01E04581-4EEE-11D0-BFE9-00AA005B4383} C:\WINNT\System32\browseui.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\ShellBrowser\{01E04581-4EEE-11D0-BFE9-00AA005B4383}

{01E04581-4EEE-11D0-BFE9-00AA005B4383} C:\WINNT\System32\browseui.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{01E04581-4EEE-11D0-BFE9-00AA005B4383}

{0E5CBF21-D15F-11D0-8301-00AA005B4383} C:\WINNT\System32\browseui.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{0E5CBF21-D15F-11D0-8301-00AA005B4383}

{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} C:\Program\Norton AntiVirus\NavShExt.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6}

{224530A0-C9CB-4AEE-9C0F-54AC1B533211} Error when opening a registry key, the key doesn't exist. Key: HKEY_CLASSES_ROOT\CLSID\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}\InprocServer32 System error message: Det går inte att hitta filen.

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{224530A0-C9CB-4AEE-9C0F-54AC1B533211}

{340166BC-786B-401F-96AC-7C8821EFA9CD} C:\Program\MereSurfer 2003 Free\MereSurferF.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{340166BC-786B-401F-96AC-7C8821EFA9CD}

{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D} C:\Program\PowerSearch\Toolbar\pwrs0102.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{4E7BD74F-2B8D-469E-A08E-8E1CA787AD2D}

{0494D0D9-F8E0-41AD-92A3-14154ECE70AC} C:\Program\MyWay\myBar\1.bin\MYBAR.DLL
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{0494D0D9-F8E0-41AD-92A3-14154ECE70AC}

{4D5C8C25-D075-11d0-B416-00C04FB90376} C:\WINNT\System32\shdocvw.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{4D5C8C25-D075-11d0-B416-00C04FB90376}

{32683183-48a0-441b-a342-7c2a440a9478} C:\WINNT\System32\browseui.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478}

{C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1} C:\WINNT\system32\shell32.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{C4EE31F3-4768-11D2-BE5C-00A0C9A83DA1}

{EFA24E62-B078-11D0-89E4-00C04FC9E26E} C:\WINNT\System32\shdocvw.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{EFA24E62-B078-11D0-89E4-00C04FC9E26E}

{EFA24E64-B078-11D0-89E4-00C04FC9E26E} C:\WINNT\System32\shdocvw.dll
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{EFA24E64-B078-11D0-89E4-00C04FC9E26E}


****************************************
All processes:

[System Process]
System
smss.exe
csrss.exe
winlogon.exe
services.exe
lsass.exe
svchost.exe
ccSetMgr.exe
ccEvtMgr.exe
spoolsv.exe
avgserv.exe
svchost.exe
regsvc.exe
MSTask.exe
symlcsvc.exe
vsmon.exe
WinMgmt.exe
svchost.exe
svchost.exe
Explorer.EXE
internat.exe
zonealarm.exe
taskmgr.exe
spywarescanner.

Go here to analyse the running processes:
http://www.kephyr.com/filedb/index.php

****************************************
Internet Explorer Settings:

about:blank
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl\

Default_Page_URL http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL

Default_Search_URL http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL

Local Page C:\WINNT\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page

Search Bar http://web.blowsearch.com/blsrch.main.toolbar/dog/forms/search.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar

Search Page http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page

Start Page http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page

SearchAssistant http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant

CustomizeSearch http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch

about:blank
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\

provider
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl\provider

Local Page C:\WINNT\System32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page

Search Bar http://web.blowsearch.com/blsrch.main.toolbar/dog/forms/search.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar

Search Page http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page

Start Page http://www.google.com/
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page

Use Search Asst no
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Use Search Asst

SearchAssistant http://web.blowsearch.com/blsrch.main.toolbar/dog/forms/search.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant


****************************************




Related links

Bazooka - Free scan for spyware, adware, trojan horses, keyloggers, etc. Detects more than 500 potentially unwanted applications. Freeware!

The File Database - Search the file database for more information. Free!

PopUp Blocker Test - Find out if your pop-up killer can handle all pop-ups. Free!

Kephyr Labs - Find out what is going on at Kephyr. Try products in an early stage of development.



FreeFixer
Read more about FreeFixer, Kephyr's latest spyware removal tool.
Home & Products |  Legal |  Privacy |  Search

© Kephyr, 2003-2012. HtmlTidy, HTML 4.01, CSS andy@kephyr.com